⚠ Exploited in the wild
Exploitation observed in the wild. Not yet on CISA KEV.
CVE-2022-21874 — Code Injection in Microsoft Windows 10 Version 1507
Severity
9.8CRITICALNVD
CNA7.8
EPSS
2.5%
top 14.66%
CISA KEV
Not in KEV
Exploit
Exploited in wild
Active exploitation observed
Affected products
Timeline
PublishedJan 11
Latest updateJan 12
Description
Windows Security Center API Remote Code Execution Vulnerability
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9